Staff Security Engineer (Blue Team)

2 months, 1 week ago
Full-time
Lead
Cybersecurity
Olo

Olo

Olo is a pioneering on-demand commerce platform for over 600 restaurant brands, offering seamless online ordering, delivery, and personalized guest experiences to maximize revenue and enhance digital operations.

Internet Software & Services
251-1K
Founded 2005

Description

  • Guide and coach the Blue Team across information protection, incident detection and response, and security service delivery.
  • Provide strategic and technical oversight for security programs and the broader security engineering function.
  • Lead security engineers and analysts who hunt, detect, and respond to internal and external threats.
  • Collaborate with customers and partners to strengthen their security posture.
  • Drive security improvements by implementing new technologies, replacing legacy tools, automating activities, and scaling practices.
  • Identify and mitigate vulnerabilities and risks by providing actionable guidance to product teams.
  • Lead the Information Protection program, including security tools, security awareness, service provider management, and control testing.
  • Oversee vulnerability management, including assessments, risk scoring, and remediation tracking.
  • Lead threat hunting and non-event-driven security reviews such as design reviews, patching checks, firewall rule reviews, and system configuration checks.
  • Oversee incident detection and response, including process ownership, incident coordination, reporting, and continuous improvement.
  • Monitor and remediate misconfigurations and security risks across cloud environments.
  • Support security services such as risk assessments, vendor assessments, PCI and SOC audit support, and service provider management.

Requirements

  • 5+ years of experience in Security Engineering, Security Operations, or Security Architecture.
  • CISSP, GCIH, or a similar certification preferred.
  • Experience serving as a technical lead for distributed teams with many remote engineers.
  • Experience with PCI-DSS and other compliance or regulatory standards.
  • Experience with attacker tactics, techniques, and procedures.
  • Knowledge of information technology, evolving threats, attack patterns, incident response, and cybersecurity standards.
  • Experience developing and leading incident response, remediation, and mitigation activities, including status updates and reports.
  • Experience analyzing security events to distinguish real incidents from non-incidents.
  • Deep understanding of operating systems, networking, and application concepts.
  • Experience hardening Windows, macOS, Linux containers, and Kubernetes.
  • Familiarity with AWS security best practices and Infrastructure-as-Code.
  • Experience deploying and maintaining security technologies such as proxies, EDR, SIEM, WAF, DLP, vulnerability assessment tools, and zero trust controls.
  • Ability to work with internal cross-functional teams, external partners, auditors, and customers.
  • Ability to work during critical incidents and support coverage requirements.
  • Strong English writing and verbal communication skills.

Benefits

  • Remote-friendly work model with the option to work from anywhere in the U.S. or from Olo’s NYC headquarters.
  • Annual compensation range of $161,000 to $220,000, depending on experience and location.
  • 20 days of paid time off, 10 sick days, 11 holidays, and year-end closure.
  • Health, dental, and vision coverage for employees and their families.
  • 401(k) match.
  • Remote-office stipend.
  • Generous parental leave plan.
  • Volunteer time off and gift matching policy.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Saviynt IAM Specialist

The Missing Link 51-250 Internet Software & Services

The Missing Link is seeking a Security Engineer - Saviynt to support large enterprise identity governance initiatives, design and deliver Saviynt-based solutions, and strengthen its growing cyber security practice.

Active Directory Azure Cybersecurity JavaScript PowerShell REST API SAP SQL
5 hours, 45 minutes ago

AI Security Architect (REMOTE - United States)

EnableComp 251-1K Insurance

EnableComp is seeking a remote AI Security Architect to secure and govern its AI and machine learning initiatives within its healthcare revenue cycle management environment.

Azure Cybersecurity HIPAA LLM Machine Learning
6 hours, 1 minute ago

Senior Infrastructure Security Engineer

Dropbox 1K-5K Internet Software & Services

Dropbox is hiring a Security Engineer to secure its AI and agentic infrastructure while helping protect products and users across cloud and on-prem environments.

Bash CI/CD CrowdStrike Go Java Kubernetes Linux LLM Node.js OAuth OpenID Connect OWASP Python Ruby Rust SIEM
6 hours, 1 minute ago

Staff, Security Engineer

Fullscript 251-1K Health Care Providers & Services

Fullscript is hiring a Staff Security Engineer to lead hands-on security engineering across its healthcare technology platform, shaping secure product development and protecting systems that support practitioners and patients.

AWS GitHub GitLab GraphQL JavaScript Node.js Penetration Testing Ruby on Rails
6 hours, 31 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers